2013-08-12 23:17:21 +02:00
|
|
|
# create a new mailman server
|
|
|
|
# NOTE: make sure there is room/space for this server on the vmhost
|
2014-01-06 18:49:22 +01:00
|
|
|
# NOTE: most of these vars_path come from group_vars/mirrorlist or from hostvars
|
2013-08-12 23:17:21 +02:00
|
|
|
|
|
|
|
- name: make mailman server
|
2014-01-20 20:01:12 +01:00
|
|
|
hosts: mailman-stg:mailman
|
2013-08-12 23:17:21 +02:00
|
|
|
user: root
|
|
|
|
gather_facts: False
|
|
|
|
|
2013-09-03 17:44:29 +02:00
|
|
|
vars_files:
|
2014-01-17 12:10:52 +01:00
|
|
|
- /srv/web/infra/ansible/vars/global.yml
|
|
|
|
- "{{ private }}/vars.yml"
|
|
|
|
- /srv/web/infra/ansible/vars/{{ ansible_distribution }}.yml
|
2013-08-12 23:17:21 +02:00
|
|
|
|
|
|
|
tasks:
|
2014-01-01 20:15:11 +01:00
|
|
|
- include: "{{ tasks }}/virt_instance_create.yml"
|
2013-08-12 23:17:21 +02:00
|
|
|
|
|
|
|
handlers:
|
2014-01-01 20:15:11 +01:00
|
|
|
- include: "{{ handlers }}/restart_services.yml"
|
2013-08-12 23:17:21 +02:00
|
|
|
|
|
|
|
- name: make the box be real
|
2014-01-20 20:01:12 +01:00
|
|
|
hosts: mailman-stg:mailman
|
2013-08-12 23:17:21 +02:00
|
|
|
user: root
|
|
|
|
gather_facts: True
|
|
|
|
|
2013-09-03 17:44:29 +02:00
|
|
|
vars_files:
|
2014-01-17 12:10:52 +01:00
|
|
|
- /srv/web/infra/ansible/vars/global.yml
|
|
|
|
- "{{ private }}/vars.yml"
|
|
|
|
- "/srv/web/infra/ansible/vars/{{ ansible_distribution }}.yml"
|
2013-08-12 23:17:21 +02:00
|
|
|
|
2013-08-19 22:12:26 +02:00
|
|
|
roles:
|
2014-01-23 18:12:40 +01:00
|
|
|
- base
|
|
|
|
- rkhunter
|
2014-06-24 23:46:54 +02:00
|
|
|
- { role: denyhosts, when: ansible_distribution_major_version != '7' }
|
2014-01-23 18:12:40 +01:00
|
|
|
- nagios_client
|
2014-06-23 02:49:31 +02:00
|
|
|
- hosts
|
2014-01-23 18:12:40 +01:00
|
|
|
- fas_client
|
2014-03-21 14:41:06 +01:00
|
|
|
- collectd/base
|
2014-01-23 18:12:40 +01:00
|
|
|
- yum-cron
|
2014-06-14 22:58:52 +02:00
|
|
|
- sudo
|
2014-08-01 18:23:40 +02:00
|
|
|
- { role: openvpn/client,
|
|
|
|
when: env != "staging" }
|
2013-08-19 22:12:26 +02:00
|
|
|
|
2013-08-12 23:17:21 +02:00
|
|
|
tasks:
|
|
|
|
# this is how you include other task lists
|
2014-01-01 20:15:11 +01:00
|
|
|
- include: "{{ tasks }}/yumrepos.yml"
|
|
|
|
- include: "{{ tasks }}/2fa_client.yml"
|
|
|
|
- include: "{{ tasks }}/motd.yml"
|
|
|
|
- include: "{{ tasks }}/apache.yml"
|
|
|
|
- include: "{{ tasks }}/mod_wsgi.yml"
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
handlers:
|
2014-01-01 20:15:11 +01:00
|
|
|
- include: "{{ handlers }}/restart_services.yml"
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
|
2014-02-03 12:31:37 +01:00
|
|
|
#
|
2013-09-03 17:44:29 +02:00
|
|
|
# Database setup
|
2014-02-03 12:31:37 +01:00
|
|
|
#
|
|
|
|
|
|
|
|
- name: prepare setting up the database
|
|
|
|
hosts: db02.stg.phx2.fedoraproject.org:db01.phx2.fedoraproject.org
|
|
|
|
gather_facts: no
|
|
|
|
user: root
|
|
|
|
|
|
|
|
tasks:
|
|
|
|
- name: install psycopg2 for the postgresql ansible modules
|
2014-10-29 04:38:40 +01:00
|
|
|
yum: pkg=python-psycopg2 state=present
|
2014-02-03 12:31:37 +01:00
|
|
|
tags:
|
|
|
|
- packages
|
|
|
|
|
2013-09-03 17:44:29 +02:00
|
|
|
- name: setup the database
|
2014-01-20 20:01:12 +01:00
|
|
|
hosts: db02.stg.phx2.fedoraproject.org:db01.phx2.fedoraproject.org
|
2013-09-03 17:44:29 +02:00
|
|
|
gather_facts: no
|
|
|
|
sudo: yes
|
|
|
|
sudo_user: postgres
|
|
|
|
vars_files:
|
2014-01-17 12:10:52 +01:00
|
|
|
- /srv/web/infra/ansible/vars/global.yml
|
|
|
|
- "{{ private }}/vars.yml"
|
|
|
|
- "/srv/web/infra/ansible/vars/{{ ansible_distribution }}.yml"
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
tasks:
|
2014-01-17 12:10:52 +01:00
|
|
|
# mailman auto-updates its schema, there can only be one admin user
|
|
|
|
- name: mailman DB user
|
|
|
|
postgresql_user: name=mailmanadmin password={{ mailman_mm_db_pass }}
|
|
|
|
- name: hyperkitty DB admin user
|
|
|
|
postgresql_user: name=hyperkittyadmin password={{ mailman_hk_admin_db_pass }}
|
|
|
|
- name: hyperkitty DB user
|
|
|
|
postgresql_user: name=hyperkittyapp password={{ mailman_hk_db_pass }}
|
|
|
|
- name: kittystore DB admin user
|
|
|
|
postgresql_user: name=kittystoreadmin password={{ mailman_ks_admin_db_pass }}
|
|
|
|
- name: kittystore DB user
|
|
|
|
postgresql_user: name=kittystoreapp password={{ mailman_ks_db_pass }}
|
|
|
|
- name: databases creation
|
|
|
|
postgresql_db: name={{ item }} owner="{{ item }}admin" encoding=UTF-8
|
|
|
|
with_items:
|
|
|
|
- mailman
|
|
|
|
- hyperkitty
|
|
|
|
- kittystore
|
2014-05-30 10:12:52 +02:00
|
|
|
- name: test database creation
|
|
|
|
postgresql_db: name=test_hyperkitty owner=hyperkittyadmin encoding=UTF-8
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
|
|
|
|
# Real MM/HK-specific work
|
|
|
|
- name: setup mailman and hyperkitty
|
2014-01-20 20:01:12 +01:00
|
|
|
hosts: mailman-stg:mailman
|
2013-09-03 17:44:29 +02:00
|
|
|
user: root
|
|
|
|
gather_facts: True
|
|
|
|
|
|
|
|
vars_files:
|
2014-01-17 12:10:52 +01:00
|
|
|
- /srv/web/infra/ansible/vars/global.yml
|
|
|
|
- "{{ private }}/vars.yml"
|
|
|
|
- "/srv/web/infra/ansible/vars/{{ ansible_distribution }}.yml"
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
roles:
|
2014-01-23 18:12:40 +01:00
|
|
|
- role: mailman
|
2014-09-18 10:46:01 +02:00
|
|
|
mailman_mailman_db_pass: "{{ mailman_mm_db_pass }}"
|
|
|
|
mailman_hyperkitty_admin_db_pass: "{{ mailman_hk_admin_db_pass }}"
|
|
|
|
mailman_hyperkitty_db_pass: "{{ mailman_hk_db_pass }}"
|
|
|
|
mailman_kittystore_admin_db_pass: "{{ mailman_ks_admin_db_pass }}"
|
|
|
|
mailman_kittystore_db_pass: "{{ mailman_ks_db_pass }}"
|
|
|
|
mailman_hyperkitty_cookie_key: "{{ mailman_hk_cookie_key }}"
|
2014-03-14 16:47:11 +01:00
|
|
|
- fedmsg/base
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
tasks:
|
2013-10-01 15:03:30 +02:00
|
|
|
- name: install more needed packages
|
2014-10-29 04:38:40 +01:00
|
|
|
yum: pkg={{ item }} state=present
|
2013-10-01 15:03:30 +02:00
|
|
|
with_items:
|
|
|
|
- tar
|
2013-10-01 16:11:12 +02:00
|
|
|
- mailman # transition from mailman2.1
|
2013-10-01 15:03:30 +02:00
|
|
|
tags:
|
|
|
|
- packages
|
2013-09-03 17:44:29 +02:00
|
|
|
|
|
|
|
#- name: easy access to the postgresql databases
|
|
|
|
# template: src=$files/mailman/pgpass.j2 dest=/root/.pgpass
|
|
|
|
# owner=root group=root mode=0600
|
|
|
|
|
|
|
|
- name: start services
|
2014-01-01 20:15:11 +01:00
|
|
|
service: state=started enabled=yes name={{ item }}
|
2013-09-03 17:44:29 +02:00
|
|
|
with_items:
|
2013-10-01 16:02:01 +02:00
|
|
|
- httpd
|
|
|
|
- mailman3
|
|
|
|
- postfix
|
2013-09-03 17:44:29 +02:00
|
|
|
|
2013-08-12 23:17:21 +02:00
|
|
|
handlers:
|
2014-01-01 20:15:11 +01:00
|
|
|
- include: "{{ handlers }}/restart_services.yml"
|